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AMENDMENTS TO THE SPECIFICATION 

Please replace paragraphs 82 and 83 with the following rewritten paragraph: 
[0082] Before this question can be answered, however, there must be some way to define 
"safe" in a way that the verification engine 250 can use. Note that "safe" here does not mean 
"error-free" in the sense that correct execution will not lead to undesired results. For example, 
certa j n software of Microsoft Corp. is woll known to may contain many "bugs," as ovidonood by 
the nnnrl tn inntnll froquont which, in some cases, m avbe corrected by installing various 
"patches." Nonetheless, Microsoft applications (or, indood, ita operating systems) dolivorod on 
one or more CDs or through tho Intomot are such software mav be considered to be valid, that is, 
"safe," in the sense that they consist of a set of instructions and data (howovor organized into 
filos) croatod by Microsoft and intentionally delivered for use as they are. Similarly, a user may 
install code from a trusted source either from a physical medium or through downloading or 
other network transfer despite having various kno wn or unknown bugs. 
[0083] Assume that either the user, a system administrator, or even a trusted remote entity 
defines some set of pages as being safe. For example, all the executable files of all versions of 
Microsoft Outlook a particular urogram could be assumed to be valid, regardless of how error- 
prone they are likely to be. This is the same as saying that all pages containing the code of these 
ticular program are valid. 



Please replace paragraph 87 with the following rewritten paragraph: 
[0087] It is therefore necessary to have some way to identify a particular page as being 
"safe." One way to do this would of course be to store a complete copy of the page. This is botl 
wasteful and unnecessary. In the preferred embodiment of the invention, each page assumed to 
be valid (using any chosen definition) is assigned at least one value that is computed as a 
function of the entire or partial contents of that page. One example of such a function *s-a*y 
woll known mav be a hash function, as further explained below. Known invalid pages may be 
identified using the same procedure, 
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Please replace paragraph 98 with the following rewritten paragraph: 
[0098] In the context of binary translation of instructions issued by a virtual machine (see 
below for further description in connection with Figure 3), any instructions fetched from a 
translation cache could be assumed to be safe, since their corresponding pages will already have 
been verified before a previous execution. 

Please replace paragraph 104 with the following rewritten paragraph: 
[0104] Alternatively, if an "execute-unless-blacklisted" policy is chosen, then no white list 
would be necessary. Such a policy might be useful to block execution of code known to come 
from an untrusted or undesirable provider. For example, assume that a user (or system 
administrator) wishes to keep his system clean of code originating from tho Mioroooft 
rnrpnmtinn a particular software publisher . The user could do this by installing a more trust e d 
operating system ouch an Linux as tho operating system 220 and could them include including in 
the black a list identifiers of known Microooft code associated with that publisher. 
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